NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
12640  CVE-2010-1106  PHP remote file inclusion vulnerability in cgi/index.php in AdvertisementManager 3.1.0 allows remote attackers to execute arbitrary PHP code via a URL in the req parameter. NOTE: this can also be leveraged to include and execute arbitrary local files via .. (dot dot) sequences.    7.5  High  2017-01-18  2010-03-25  View
12639  CVE-2010-1105  Cross-site scripting (XSS) vulnerability in cgi/index.php in AdvertisementManager 3.1.0 and 3.6 allows remote attackers to inject arbitrary web script or HTML via the usr parameter.    4.3  Medium  2017-01-18  2010-05-20  View
12638  CVE-2010-1104  Cross-site scripting (XSS) vulnerability in Zope 2.8.x before 2.8.12, 2.9.x before 2.9.12, 2.10.x before 2.10.11, 2.11.x before 2.11.6, and 2.12.x before 2.12.3 allows remote attackers to inject arbitrary web script or HTML via vectors related to error messages.    4.3  Medium  2017-01-18  2010-03-25  View
12637  CVE-2010-1103  Integer overflow in Stainless allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number outside the range of the unsigned short data type, as demonstrated by a value of 65561 for TCP port 25.    Medium  2017-01-18  2010-04-02  View
12636  CVE-2010-1102  Integer overflow in OmniWeb allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number outside the range of the unsigned short data type, as demonstrated by a value of 65561 for TCP port 25.    Medium  2017-01-18  2010-04-02  View

Page 15145 of 17672, showing 5 records out of 88360 total, starting on record 75721, ending on 75725

Actions